Separation of intranet and DMZ

Note: Even though the intranet and DMZ may already be separated from one another at the Ethernet level by dedicated interfaces, separating them at IP level requires the use of a firewall rule.

The server service should be accessible from the Internet and the intranet, but IP traffic should be prohibited from the DMZ to the intranet. For the example above, the following would result:

www.lancom-systems.com

LANCOM Systems GmbH | A Rohde & Schwarz Company | Adenauerstr. 20/B2 | 52146 Wuerselen | Germany | E‑Mail info@lancom.de

LANCOM Logo